HID VMware View and 4TRESS AS User Manual

ActivIdentity® 4TRESS™
Authentication Server FT2011
and VMWARE® View 5.1
Radius Channel Integration Handbook
Document Version 1.0 | Released | August 11, 2012
ActivIdentity 4TRESS Authentication Server (FT2011) and VMWARE View 5.1 | Integration Handbook
P 2
External Use | August 8, 2012 | © 2012 ActivIdentity
Table of Contents
Table of Contents ....................................................................................................................................................... 2
1.0 Introduction ....................................................................................................................................................... 3
1.1 Scope of Document .................................................................................................................................... 3
1.2 Prerequisites .............................................................................................................................................. 3
2.0 VMWARE View configuration ........................................................................................................................... 4
2.1 Procedure 1 : Create New Radius Server Instance ................................................................................... 4
2.2 Procedure 2 : Additional Configuration Options ......................................................................................... 6
3.0 ActivIdentity 4TRESS AS Configuration: Sequence of Procedures ................................................................. 7
3.1 Procedure 1 : Configure RADIUS Channel ................................................................................................ 7
3.2 Procedure 2 : Managing User Repositories: An Overview ....................................................................... 10
3.2.1 Create User Repository ................................................................................................................... 10
3.3 Procedure 3 : Configure Administration Groups, User Types, User Repositories, ................................. 12
4.0 Sample Authentication .................................................................................................................................... 13
ActivIdentity 4TRESS Authentication Server (FT2011) and VMWARE View 5.1 | Integration Handbook
P 3
External Use | August 8, 2012 | © 2012 ActivIdentity
1.0 Introduction
VMware View is a desktop virtualization solution that simplifies IT manageability and control while delivering the highest fidelity end-user experience across devices and networks. By encapsulating the operating systems, applications, and user data into isolated layers, IT organizations can deliver a modern desktop.
WMWARE has extended View to support RADIUS authentication as an option in the latest View release.
ActivIdentity offers two solutions: ActivIdentity® 4TRESS™ AAA Server for Remote Access—Addresses the security risks associated
with a mobile workforce remotely accessing systems and data.
ActivIdentity 4TRESS™ Authentication Server (AS)—Offers support for multiple authentication
methods that are useful for diverse audiences across a variety of service channels (SAML, Radius, etc.), including user name and password, mobile and PC soft tokens, one-time passwords, and transparent Web soft tokens.
1.1 Scope of Document
This document explains how to set up ActivIdentity 4TRESS AS FT2011 radius authentication with VMWARE View.
Use this handbook to enable authentication via an ActivIdentity token (Hard token, soft token, SMS token) for use with a VMWARE View connection.
1.2 Prerequisites
ActivIdentity 4TRESS Authentication Server FT2011.  VMware View 5.1 or higher, fully functioning using standard authentication, then start the Radius
integration configuration.
ActivIdentity 4TRESS Authentication Server (FT2011) and VMWARE View 5.1 | Integration Handbook
P 4
External Use | August 8, 2012 | © 2012 ActivIdentity
2.0 VMWARE View configuration
This chapter describes how to manage VMWARE View in radius context. When a user signs into the VMWARE
View client, the VMWARE View server forwards the user’s credentials to this authentication server to verify the
user’s identity. You will create one authentication server (an ActivIdentity 4TRESS AS FT2011 RADIUS Server) to validate the user’s one-time password generated by an ActivIdentity token.
2.1 Procedure 1 : Create New Radius Server Instance
1. On the VMware View Administrator (from a Web browser, access View Administrator on the Connection Server using https://hostname/admin and log in) select View Configuration, then
Servers, select the Connection Servers tab and then Edit to bring up the Edit View Connection Server Settings and select the Authentication tab.
2. Under Advanced Authentication choose, for 2-factor authentication, the RADIUS tab.
ActivIdentity 4TRESS Authentication Server (FT2011) and VMWARE View 5.1 | Integration Handbook
P 5
External Use | August 8, 2012 | © 2012 ActivIdentity
3. Under Select Authenticator select Create new Authentication, this opens the Add RADIUS Authenticator screen, this allows a Primary and Secondary RADIUS authentication servers to be configured, enter the following:
Label: A label shown to clients
4. Under Primary Authentication Server section :
Hostname/Address: IP address of the 4TRESS AS  Authentication Type: select RADIUS authentication type, use PAP for initial setup.  Shared secret: The shared secret, the same as entered on the 4TRESS AS server
Loading...
+ 9 hidden pages